Senior Director, Security Architect (USA - Remote)

Quorum Software - United States

Hiring: Senior Director, Security Architect (USA - Remote) Company: Quorum Software Location: United States Job Posted Time: 2026-09-15 14:50:36 Employment Type: Remote Target Skills & Keywords : Azure, CI/CD, DAST, Embedded Systems, Encryption, Foundry, IAM, LLM, OAuth2, OIDC, REST, SAST, SCA, SOC 2, SaaS, Terraform About the job Experience: •8+ years) in security engineering or architecture, with a strong software-product and cloud-native focus. Required Skills: •Own the secure SDLC: define and evolve security gates across design, build, and release — threat modeling, secure-by-design patterns, and paved-road guardrails that engineering teams adopt by default. •Drive SAST, DAST, and SCA: select, integrate, and tune application- and dependency-scanning tooling in CI/CD, keeping signal high and friction low, and set the standards for triage and remediation SLAs. •Govern AI-generated code: establish review, provenance, and scanning controls specifically for code produced with AI assistants, treating it as a first-class supply-chain and quality risk. •Secrets management: architect enterprise-grade secret storage, rotation, and detection so credentials never live in source or pipelines. •Partner on offensive testing: act as the technical counterpart for CISO-commissioned application pentests and red-team exercises, and own remediation of the findings within PIE. •Secure the Azure landing zone: own the security architecture of subscriptions, network topology, private endpoints, and in-cloud segmentation for product and platform workloads. •Policy-as-code & CSPM: codify guardrails (e.g., Azure Policy, Bicep/Terraform, Defender for Cloud) so misconfiguration is prevented at deploy time and continuously detected at runtime. •Implement cloud IAM/PAM: operationalize the enterprise standard for MFA, just-in-time access, and service-account hygiene across cloud workloads, in line with CISO-set requirements. Qualifications: •And other duties as assigned. •Substantial experience (typically 8+ years) in security engineering or architecture, with a strong software-product and cloud-native focus. •Demonstrated ownership of security architecture for production SaaS/cloud products, ideally in a regulated or high-assurance context. •Deep hands-on Azure security expertise — landing zones, CSPM/Defender for Cloud, Azure Policy, private networking, and infrastructure-as-code (Bicep or Terraform). •Proven secure-SDLC / DevSecOps practice — threat modeling and SAST/DAST/SCA and secrets management embedded in CI/CD. •Strong grasp of cloud-native identity — OAuth2/OIDC, authorization models, and multi-tenant isolation. •Working command of compliance frameworks relevant to product assurance — SOC 2, ISO 27001, and customer security questionnaires. •Excellent communication and influence — able to align engineers, product leaders, and the CISO organization around a shared security direction. Compensation: •Flexible work environment (work from home / hybrid options) Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!